Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (59 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: Yes, we were able to verify the certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 3.85.156.254
Reverse IP lookup: ec2-3-85-156-254.compute-1.amazonaws.com.
Nameserver: ns-1463.awsdns-54.org.
Nameserver: ns-1566.awsdns-03.co.uk.
Nameserver: ns-298.awsdns-37.com.
Nameserver: ns-705.awsdns-24.net.

General Information

Common Name: *.ballotpedia.org
SANs: DNS:*.ballotpedia.orgDNS:ballotpedia.org Total number of SANs: 2
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 9db9b61e3143371db5b2e1dc3fce747
Not Before: May 28, 2023 00:00:00 GMT
Not After: Jun 25, 2024 23:59:59 GMT
Number of certs: 4
Revocation Status: good
OCSP Stapling: Not Supported
Server: Apache/2.4.54 (Debian)
HSTS: max-age=31536000
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: *.ballotpedia.org

Decode this certificate for verbose information →
Subject Common Name *.ballotpedia.org
Issuer Common Name Amazon RSA 2048 M01
Issuer Organization Amazon
Not Before: May 28, 2023 00:00:00 GMT
Not After: Jun 25, 2024 23:59:59 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 9db9b61e3143371db5b2e1dc3fce747
SHA1 Fingerprint: C1:65:84:F5:25:2F:F4:72:F1:C7:24:1B:47:26:AC:95:1A:1C:95:42
MD5 Fingerprint: 61:6B:E4:8A:13:2F:31:CD:8B:07:A2:1B:63:9B:09:87

Certificate # 2 - Common Name: Amazon RSA 2048 M01

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Amazon RSA 2048 M01
Subject Organization Amazon
Issuer Common Name Amazon Root CA 1
Issuer Organization Amazon
Not Before: Aug 23, 2022 22:21:28 GMT
Not After: Aug 23, 2030 22:21:28 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 77312380b9d6688a33b1ed9bf9ccda68e0e0f
SHA1 Fingerprint: 2A:D9:74:A7:75:F7:3C:BD:BB:D8:F5:AC:3A:49:25:5F:A8:FB:1F:8C
MD5 Fingerprint: 94:3B:3C:C1:D3:11:E0:6F:4E:4A:CB:F5:8F:28:9A:D2

Certificate # 3 - Common Name: Amazon Root CA 1

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Amazon Root CA 1
Subject Organization Amazon
Issuer Common Name Starfield Services Root Certificate Authority - G2
Issuer Organization Starfield Technologies, Inc.
Not Before: May 25, 2015 12:00:00 GMT
Not After: Dec 31, 2037 01:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 67f944a2a27cdf3fac2ae2b01f908eeb9c4c6
SHA1 Fingerprint: 06:B2:59:27:C4:2A:72:16:31:C1:EF:D9:43:1E:64:8F:A6:2E:1E:39
MD5 Fingerprint: E8:65:A2:2A:AE:52:4D:26:86:9A:F0:44:8D:6F:D8:96

Certificate # 4 - Common Name: Starfield Services Root Certificate Authority - G2

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name Starfield Services Root Certificate Authority - G2
Subject Organization Starfield Technologies, Inc.
Issuer Organization Starfield Technologies, Inc.
Not Before: Sep 02, 2009 00:00:00 GMT
Not After: Jun 28, 2034 17:39:16 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: a70e4a4c3482b77f
SHA1 Fingerprint: 9E:99:A4:8A:99:60:B1:49:26:BB:7F:3B:02:E2:2D:A2:B0:AB:72:80
MD5 Fingerprint: C6:15:09:25:CF:EA:59:41:DD:C7:FF:2A:0A:50:66:92

OpenSSL Handshake

depth=2 C = US, O = Amazon, CN = Amazon Root CA 1
verify return:1
depth=1 C = US, O = Amazon, CN = Amazon RSA 2048 M01
verify return:1
depth=0 CN = *.ballotpedia.org
verify return:1
CONNECTED(00000003)
OCSP response: no response sent
---
Certificate chain
 0 s:CN = *.ballotpedia.org
   i:C = US, O = Amazon, CN = Amazon RSA 2048 M01
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:C = US, O = Amazon, CN = Amazon RSA 2048 M01
   i:C = US, O = Amazon, CN = Amazon Root CA 1
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 2 s:C = US, O = Amazon, CN = Amazon Root CA 1
   i:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 3 s:C = US, ST = Arizona, L = Scottsdale, O = "Starfield Technologies, Inc.", CN = Starfield Services Root Certificate Authority - G2
   i:C = US, O = "Starfield Technologies, Inc.", OU = Starfield Class 2 Certification Authority
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=CN = *.ballotpedia.org

issuer=C = US, O = Amazon, CN = Amazon RSA 2048 M01

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 5596 bytes and written 452 bytes
Verification: OK
---
New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES128-GCM-SHA256
    Session-ID: 9A3514C7388B9DC4F7C3AD91D522B21362CFA9625159126AB8FC6921E7992C4D
    Session-ID-ctx: 
    Master-Key: 81859264E2B1760AD0D91CC966CEB3F94F77A78B87662732C3EA60179C18239631B2939135B16F8F941DBFA5F588057C
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 86400 (seconds)
    TLS session ticket:
    0000 - 39 aa 91 11 f2 bf 52 31-71 2c 1b 0c a1 1f cd b0   9.....R1q,......
    0010 - 25 6d 3a b5 8d 66 bc fe-2f 8a 8c 67 f7 65 99 89   %m:..f../..g.e..
    0020 - 34 42 f9 45 a7 1a 40 9a-7a 5a 1d 95 62 91 16 79   4B.E..@.zZ..b..y
    0030 - ce 44 67 ac c7 84 50 6f-0d 6d 8f 77 14 2c 87 7c   .Dg...Po.m.w.,.|
    0040 - 16 78 4a ea fb 52 a4 fb-aa fd 1a 07 e1 79 3f 93   .xJ..R.......y?.
    0050 - 03 37 12 5c 70 b4 1d b6-c7 e5 f1 8f 4c cb 21 79   .7.\p.......L.!y
    0060 - 58 9e 3e 5e c0 a8 23 d1-42                        X.>^..#.B

    Start Time: 1714190878
    Timeout   : 7200 (sec)
    Verify return code: 0 (ok)
    Extended master secret: yes
---
DONE